CVE-2022-34447
Last modified
CVE-2022-34447 is a high-severity vulnerability rated 7.2/10 on the CVSS scale. PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains OS Command Injection vulnerability. An authenticated remote attacker with administrative privileges could potentially exploit the issue and execute commands on the system as the root user. . EPSS estimates a 1.66% chance of exploitation in the next 30 days.
Description
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains OS Command Injection vulnerability. An authenticated remote attacker with administrative privileges could potentially exploit the issue and execute commands on the system as the root user.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Dell | Powerpath Management Appliance | 3.0 |
| Dell | Powerpath Management Appliance | 3.1 |
| Dell | Powerpath Management Appliance | 3.2 |
| Dell | Powerpath Management Appliance | 3.3 |
References
- https://www.dell.com/support/kbdoc/000205404Vendor Advisory
- https://www.dell.com/support/kbdoc/000205404Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-34447?
How severe is CVE-2022-34447?
How do I fix CVE-2022-34447?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-34441 Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, co…9.8
- CVE-2022-34442 Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, co…9.8
- CVE-2022-34443 Dell Rugged Control Center, versions prior to 4.5, contain …7.8
- CVE-2022-34444 Dell PowerScale OneFS, versions 9.2.0.x through 9.4.0.x con…7.5
- CVE-2022-34445 Dell PowerScale OneFS, versions 8.2.x through 9.3.x contain…4.4
- CVE-2022-34446 PowerPath Management Appliance with versions 3.3 & 3.2* con…8.1
- CVE-2022-34448 PowerPath Management Appliance with versions 3.3 & 3.2*, 3.…8.8
- CVE-2022-34449 PowerPath Management Appliance with versions 3.3 & 3.2* con…6
- CVE-2022-3445Use after free in Skia in Google Chrome prior to 106.0.5249.…8.8
- CVE-2022-34450 PowerPath Management Appliance with version 3.3 contains Pr…6.7
- CVE-2022-34451 PowerPath Management Appliance with versions 3.3 & 3.2*, 3.…4.8
- CVE-2022-34452 PowerPath Management Appliance with versions 3.3, 3.2*, 3.1…2.7
Are you affected by CVE-2022-34447?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
